CVE-2017-20213

HIGH

FLIR Thermal Camera F/FC/PT/D Stream <8.0.0.64 - Info Disclosure

Title source: llm
STIX 2.1

Description

FLIR Thermal Camera F/FC/PT/D Stream firmware version 8.0.0.64 contains an unauthenticated vulnerability that allows remote attackers to access live camera streams without credentials. Attackers can exploit the vulnerability to view unauthorized thermal camera video feeds across multiple camera series without requiring any authentication.

Exploits (1)

exploitdb WRITEUP
by LiquidWorm · textwebappshardware
https://www.exploit-db.com/exploits/42789

References (5)

Core 5
Core References
Exploit, Third Party Advisory exploit
https://www.exploit-db.com/exploits/42789/
Exploit, Third Party Advisory exploit
https://packetstormsecurity.com/files/144323
Issue Tracking third-party-advisory
https://cxsecurity.com/issue/WLB-2017090204
Third Party Advisory third-party-advisory
https://www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5435.php

Scores

CVSS v3 7.5
EPSS 0.0018
EPSS Percentile 39.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-306
Status published
Products (1)
FLIR Systems, Inc./FLIR Thermal Camera F/FC/PT/D Stream 8.0.0.64
Published Jan 08, 2026
Tracked Since Feb 18, 2026